Coś starego jest znowu nowe.pdf

(1676 KB) Pobierz
Something Old
Is New Again
Merike Kaeo
www.doubleshotsecurity.com
PLNOG - October 21, 2010 - Krakow, Poland
1
748992147.002.png
Internet Evolution
Networking Stuff [data link and network layer]
Bridging vs Routing
Switching
VLANs
Applications – Isn‟t this what we really care about?
Email/Web were the beginning
Web 2.0 / P2P is the now and the future
Cloud Computing – Someone else may be running the
infrastructure that house your applications
Where does Security fit in?
PLNOG - October 21, 2010 - Krakow, Poland
2
748992147.003.png
What Are Security Goals?
Controlling Data Access
Controlling Network Access
Ensuring Network Availability
Protecting Information In Transit
Preventing Intrusions
Responding To Security Breaches
Privacy? – Related but Orthogonal
PLNOG - October 21, 2010 - Krakow, Poland
3
748992147.004.png
Causes of Security Related Issues
Protocol error
No one gets it right the first time
Software bugs
Is it a bug or feature ?
Active attack
Target control/management plane
Target data plane
More probable than you think !
Configuration mistakes
Most common form of problem
PLNOG - October 21, 2010 - Krakow, Poland
4
748992147.005.png
Realities of Current Security Issues
The following data re Security Breaches is from:
http://www.verizonbusiness.com/resources/reports/rp_2010-data-breach-report_en_xg.pdf
PLNOG - October 21, 2010 - Krakow, Poland
5
748992147.001.png
Zgłoś jeśli naruszono regulamin